Microsoft Defender for Endpoint
Endpoint protection

STEP 3: Verify client connectivity to Microsoft Defender for Endpoint service URLs

In brief

The page updates instructions for downloading the Client Analyzer, specifying HardDrivePath, and locating HTTP status code information. It also clarifies that Defender for Endpoint falls back to direct connectivity when the configured telemetry proxy cannot be reached.

What Defender admins need to know

Administrators troubleshooting connectivity have clearer guidance on tool output locations and proxy behavior.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

STEP 3: Verify client connectivity to Microsoft Defender for Endpoint service URLs

Verify that the proxy configuration is completed successfully. The WinHTTP can then discover and communicate through the proxy server in your environment, and then the proxy server allows traffic to the Defender for Endpoint service URLs.

  1. Download the Microsoft Defender for Endpoint Client Analyzer tool on the device where the Defender for Endpoint sensor is running on.running.

  2. Extract the contents of MDEClientAnalyzer.zip on the device.

    C:\Work\tools\MDEClientAnalyzer\MDEClientAnalyzer.cmd

    
    
  3. The tool creates and extracts the MDEClientAnalyzerResult.zip file in the folder to use in thespecified by HardDrivePath.

  4. Open MDEClientAnalyzerResult.txt and verify that you've performed the proxy configuration steps to enable server discovery and access to the service URLs.

If any one of the connectivity options returns a (200) status, then the Defender for Endpoint client can communicate with the tested URL properly using this connectivity method.

However, if the connectivity check results indicate a failure, an HTTP error is displayed (see HTTP Status Codes)HTTP Status Codes). You can then use the URLs in the table shownlisted in Enable access to Defender for Endpoint service URLs in the proxy server., which provides the required service URLs to allow through your proxy server. The URLs available for use depend on the region selected in the Defender for Endpoint onboarding package or onboarding script used for the device.

Testing connectivity to the streamlined onboarding method